Katalys Shops Addon: Merchant Bridge Security & Risk Analysis

wordpress.org/plugins/katalys-shop

Provides automatic order fulfillment integration with Katalys Shop orders for WooCommerce.

10 active installs v1.1.23 PHP 7.0+ WP 3.0.0+ Updated May 5, 2025
affiliateecommerceembedded-commercerevoffersshop
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Katalys Shops Addon: Merchant Bridge Safe to Use in 2026?

Generally Safe

Score 100/100

Katalys Shops Addon: Merchant Bridge has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The 'katalys-shop' plugin v1.1.23 exhibits a remarkably strong security posture based on the provided static analysis. The absence of any identified attack vectors like AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's external exposure. Furthermore, the code signals indicate excellent development practices, with no dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. The lack of file operations and external HTTP requests further reduces potential vulnerabilities. The taint analysis also shows no identified unsanitized flows, reinforcing the impression of secure coding.

Critically, the plugin has no known vulnerabilities (CVEs) in its history, nor any recorded common vulnerability types. This pattern of no past issues and a clean static analysis suggests a well-maintained and securely developed plugin. The only minor area for consideration might be the bundling of the Guzzle library, where staying updated is always a good practice, although no specific issues are indicated here. Overall, this plugin appears to be very secure, with the development team demonstrating a clear commitment to security best practices.

Vulnerabilities
None known

Katalys Shops Addon: Merchant Bridge Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Katalys Shops Addon: Merchant Bridge Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Guzzle

Output Escaping

100% escaped4 total outputs
Attack Surface

Katalys Shops Addon: Merchant Bridge Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionrest_api_initkatalys-shop.php:55
actionrest_api_initkatalys-shop.php:56
filtermanage_edit-shop_order_columnskatalys-shop.php:74
filterwoocommerce_coupon_errorkatalys-shop.php:79
filterwoocommerce_coupon_messagekatalys-shop.php:86
actionmanage_shop_order_posts_custom_columnkatalys-shop.php:101
Maintenance & Trust

Katalys Shops Addon: Merchant Bridge Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedMay 5, 2025
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Katalys Shops Addon: Merchant Bridge Developer Profile

katalysdev

2 plugins · 80 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Katalys Shops Addon: Merchant Bridge

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/katalys-shop/assets/css/advertiser-integration.css/wp-content/plugins/katalys-shop/assets/css/settings-page.css/wp-content/plugins/katalys-shop/assets/js/advertiser-integration.js/wp-content/plugins/katalys-shop/assets/js/settings-page.js
Script Paths
/wp-content/plugins/katalys-shop/assets/js/advertiser-integration.js/wp-content/plugins/katalys-shop/assets/js/settings-page.js
Version Parameters
katalys-shop/assets/css/advertiser-integration.css?ver=katalys-shop/assets/css/settings-page.css?ver=katalys-shop/assets/js/advertiser-integration.js?ver=katalys-shop/assets/js/settings-page.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-katalys-order-numberdata-katalys-coupon-codedata-katalys-coupon-amount
REST Endpoints
/wp-json/katalys-to-store-api/v1/wp-json/1o-to-store-api/v1
Shortcode Output
[katalys_shop_login_button][katalys_shop_user_account][katalys_shop_product_display][katalys_shop_checkout_button]
FAQ

Frequently Asked Questions about Katalys Shops Addon: Merchant Bridge